Skip to content

[v8] Update dependencies to resolve CVEs#3764

Merged
anujc25 merged 1 commit intocloudfoundry:v8from
anujc25:anujc/fix-cve-pipeline
Apr 13, 2026
Merged

[v8] Update dependencies to resolve CVEs#3764
anujc25 merged 1 commit intocloudfoundry:v8from
anujc25:anujc/fix-cve-pipeline

Conversation

@anujc25
Copy link
Copy Markdown
Contributor

@anujc25 anujc25 commented Apr 13, 2026

Description of the Change

Bump go.opentelemetry.io/otel/sdk to v1.43.0 and update the Go version in test assets to 1.26.2 to resolve High and Critical vulnerabilities reported by the check-cves workflow.

Why Is This PR Valuable?

Fixes the pipeline.

Applicable Issues

How Urgent Is The Change?

time-sensitive to unblock the CI.

Other Relevant Parties

Bump go.opentelemetry.io/otel/sdk to v1.43.0 and update the Go
version in test assets to 1.26.2 to resolve High and Critical
vulnerabilities reported by the check-cves workflow.
@Gerg Gerg requested review from a team April 13, 2026 17:19
Copy link
Copy Markdown
Contributor

@prkalle prkalle left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM.
Thanks!

Copy link
Copy Markdown
Contributor

@vuil vuil left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

lgtm, thanks!

@anujc25 anujc25 merged commit 6a82890 into cloudfoundry:v8 Apr 13, 2026
13 of 14 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants